Summary | ZeroBOX

ShellWaitForProcess.exe

UPX OS Processor Check PE64 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Sept. 25, 2024, 10:33 a.m. Sept. 25, 2024, 10:46 a.m.
Size 14.5KB
Type PE32+ executable (console) x86-64, for MS Windows
MD5 e80d930390090acbf7353e9df7d1ac84
SHA256 0b271005f1686d1e28579727bfa40cf685bc499bb52118dbdec6de165e68a985
CRC32 EF7DCB51
ssdeep 192:4e6EVFiWAfzmgFyqjUlLveahGIsqZOcx8FFassgAV2863Q5tfncJ:4kFQ7mgFyqj0dhGtI3x813l
PDB Path C:\Users\admin\Desktop\Project\ShellWaitForProcess\x64\Release\ShellWaitForProcess.pdb
Yara
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path C:\Users\admin\Desktop\Project\ShellWaitForProcess\x64\Release\ShellWaitForProcess.pdb